CVE-2024-13264

CVE-2024-13264: Opigno module - Critical - Arbitrary PHP code execution - SA-CONTRIB-2024-028

Vendor Drupal
Product Opigno module
Weakness CWE-96
Published January 9, 2025
Last update January 10, 2025

CVSS base score

—

What the vulnerability does

01Description

Improper Neutralization of Directives in Statically Saved Code ('Static Code Injection') vulnerability in Drupal Opigno module allows PHP Local File Inclusion.This issue affects Opigno module: from 0.0.0 before 3.1.2.

Key dates

02Disclosure timeline

January 9, 2025 CVE published
January 10, 2025 Record updated

Related vulnerabilities

04Related CVE